Modernizing Security Operations Survey

Logo
Presented by

TJ Banasik, SANS Analyst | Sri Sundaralingam, ExtraHop | Janani Nagarajan, CrowdStrike

About this talk

Security operations are the epicenter of the cybersecurity industry. SecOps is where the metaphorical rubber meets the road for organizations defending their enterprises. Security Governance Risk & Compliance (SGRC), Security Application Development, Security Engineering, and all respective cybersecurity functions overlap to enable Security Operations Centers to respond to the threat. These teams hold the line, 24/7 through nights, weekends, and holidays to defend today's enterprises. Yesterday's SecOps was grounded in perimeter-based approaches to secure data inside an organization. The pandemic has created a technological revolution driving businesses to the cloud as well as evolving IT policies to support globally distributed and remote workforces. The threat has capitalized on this growth and change in business, which drives our need to mature SecOps programs. A mature SecOps team operates along with measurable service level agreements, constantly learning from adversaries and proactively mitigating the threat. Maturing SecOps isn't just getting better at defending; it's modernizing with evolving people, processes, and technologies. This webcast will summarize customer data in three generalized areas: demographics, SecOps architecture, and SecOps priorities. ● Key dynamics of people, processes, and technologies for maturing SecOps ● Investments in maturing SecOps ● Tradeoffs in augmenting the workforce with Security Orchestration Automation & Response ● Most effective measures to defend against ransomware and supply chain attacks ● Tools leveraged to validate the organization's security posture ● Integration of Threat Detection & Response into SecOps workflows
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (105)
Subscribers (12434)
ExtraHop is reinventing network detection and response (NDR) to help enterprises stay ahead of emerging threats with unparalleled network visibility, context, and control. As new attack vectors rapidly emerge, SOCs face an escalating challenge: Expand visibility to effectively detect and respond to threats, enhance productivity to manage the increased volume, and do it all while reducing operational complexity. By combining the power of NDR with network performance management (NPM), intrusion detection (IDS), and packet forensics in a single, integrated platform, enterprises benefit from complete visibility and contextual insights across their entire hybrid infrastructure - from data center campuses to cloud and SASE infrastructures and beyond. ExtraHop can decrypt and unlock packet-level data at wire speeds, analyzing and correlating it with its cloud-scale machine learning models to detect, investigate, and remediate cyber risks in real-time, without the added complexity of multiple tools. Unlock the full power of network detection and response with ExtraHop today. Learn more at www.extrahop.com